Intelligence View
CVE-2021-25642 | Apache Hadoop up to 2.10.1/3.2.3/3.3.3 CapacityScheduler deserialization
A vulnerability, which was classified as critical, was found in Apache Hadoop up to 2.10.1/3.2.3/3.3.3. This affects an unknown part of the component CapacityScheduler. The manipulation leads to deserialization. This vulnerability is…
This vulnerability is uniquely identified as CVE-2021-25642. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
2. Cyber Threat Intelligence & Forensik
3. Compliance, SLA & Vendor Adherence
Hersteller-Sicherheitsmeldungen & Patch-Status
Hersteller hat ein verifiziertes Patch-Release herausgegeben. Sofortiges Rollout auf Test- und Produktivsystemen empfohlen.
-
Apache Security Advisory Verifiziertapache.org
-
Web Referencesecurity.netapp.com